CVE-2026-40144 – BeyondTrust Endpoint Privilege Management (Windows deployments)
CVSS 7.3
HIGH
High with EoP or RCE – Expedited Deployment
“A kernel-level memory flaw creates a path to serious endpoint compromise.”
BeyondTrust fixed a memory-corruption vulnerability in the Windows kernel-mode component of Endpoint Privilege Management. CVE-2026-40144 affects versions prior to 26.1.2 and stems from insufficient validation that can cause memory access outside intended bounds. The CVSS score is 7.3, which is High severity.
The vulnerability is associated with remote code execution impact and is addressed by upgrading to version 26.1.2.
Key Details
- CWE Classification
- CWE-125
Patch this CVE on all your endpoints in under 5 minutes.
First 200 endpoints are free forever, scale as needed.